Senior Platform Engineer
Join Our Mission: To Save the World from Unsafe Mobile Apps! NowSecure is the mobile app security software company trusted by the world’s most demanding organizations and most advanced security teams.
As the standards-based mobile app security and privacy company, NowSecure protects the Mobile App Economy. The world’s most demanding organizations, innovative mobile developers, advanced security, and compliance teams entrust NowSecure to safeguard millions of mobile app users across banking, insurance, high tech, IoT, retail, hospitality, energy and government sectors. Only NowSecure delivers the full solution suite of continuous security and compliance assessment with the depth, speed, accuracy, and efficiency to meet modern business demands. NowSecure is dedicated to the open-source community and standards including OWASP, ioXt, and NIAP. NowSecure is also SOC 2 certified and recognized by IDC, Deloitte, Gartner and TAG Cyber.
For more information, see our website, https://www.nowsecure.com
We are leading in cutting edge mobile security and sponsor a number of open-source tools such as radare (https://github.com/radare/radare2) and Frida (https://github.com/frida/) that are widely used by security researchers.
- We are a distributed company which hires the best people across the Continental US.
- We build our software using best of breed frameworks and tools
IDEAL CANDIDATE WILL:
This role demands a strong understanding of systems and networking, along with solid experience in application development technologies. As part of our team, you will help design and build out our cloud based infrastructure, manage our SaaS platform, automate deployment pipelines, and collaborate with development teams to design scalable solutions. This role is essential to ensuring the smooth operation and reliable service delivery of NowSecure’s high-volume, data-driven infrastructure and applications.
REQUIRED EXPERIENCE:
- 5+ years experience working in SaaS based software development working with multiple open source projects and frameworks to deliver intricate & scalable product solutions
- Kubernetes design and administrative experience
- Development experience
- Experience designing and deploying Infrastructure as Code usingTerraform
- Experience working with AWS
- Extensive experience working with git source control and CICD pipelines
- Experience with monitoring tools such as DataDog
- Experience managing and maintaining highly scalable and available network services and APIs, particularly with distributed, event driven, or highly-parallel systems
AND, BONUS POINTS IF YOU HAVE ANY OF THIS:
- Experiencing managing Kubernetes with Rancher
- Experience implementing and managing AWS EKS clusters.
- Experience managing PostgreSQL
- Experience with SAML/OpenID/OAuth2 using Auth0
- Experience with building secure systems
- Encryption and other security fundamentals
- Open-source contributions and participation
- Previous experience at an early-stage or growth-stage software startup
WE VALUE DIVERSITY
We believe that the best ideas come from teams where diverse points of view uncover new solutions to hard problems. We welcome and value team members who bring diverse life experiences, educational backgrounds, cultures, and work experiences.
COMPENSATION & BENEFITS
- The salary band for this position ranges is competitive and commensurate with experience and performance. This position will be eligible for a competitive annual bonus and equity package.
- Comprehensive Medical/Dental/Vision coverage
- 401K Plan + Company Match
- Remote work flexibility
- Home Office Stipend
- Paid Parental Leave
- Flexible PTO
INFORMATION SECURITY RESPONSIBILITIES
- Follow guidance in the Master IS Policy and applicable Network Admin standards and procedures
- Perform responsibilities assigned to the Network Administrator in the Master IS Policy
- Implement network security controls as required by applicable policies, including role-based access, default deny firewall rules, logging, patch management, and system security testing
- Implement secure coding standards and software security controls as required by policies
- Report any security incidents and support incident response procedures pursuant to the Incident Response policy
- Support information risk assessments, internal and external information security audit functions
- Maintain asset tracking for all subject information systems and assets
- Complete security training and maintain current certifications as required